pendingPackage unavailable, check later.
Scanned: N/A
@posthog/core
1.29.8
latest
latest
SAFE Assessment
SAFE Assessment Pending
INCIDENTS FOR THIS VERSION:
FAQ for @posthog/core
Is @posthog/core malicious or is it safe to use?
The npm package @posthog/core has not been assessed for safeness. The package is unavailable. Caution is advised.
Is @posthog/core popular?
The npm package @posthog/core is not widely used. It has 101M recorded downloads. A package's popularity is not a good indicator of its safety, visit the SAFE Assessment section to see the full analysis of package deployment risk categories.
How do I secure @posthog/core once it is in my app?
Since we can't know when or where malicious attacks will happen, we recommend tracking how @posthog/core behaviors change over multiple software releases. By adopting differential analysis in your release process, you can detect unexpected changes to a @posthog/core version, which can prevent advanced software supply chain attacks. Read how our technology can help prevent future attacks similar to SolarWinds and 3CX.
Did you know...
... that you can use ReversingLabs’ Spectra Assure platform to perform regular risk assessments of packages you develop in-house?
We recommend continuous software safeness monitoring through CI/CD integrations and pre-release/deployment checks. In addition to basic package information found on this page our platform offers rich reports for developers and DevSecOps that help them remediate all reported issues.